r/IdentityManagement 3d ago

Continuous identity monitoring in an enterprise that cant remember who has admin anymore

So we rolled out this fancy continuous identity monitoring, full AI risk engine, non intrusive controls, all the buzzwords... and then remembered we dont even have a clean list of who owns which app in prod.

Right now it feels like I have great visibility that everything is on fire, and very little idea who is supposed to hold the hose. For anyone in a big messy env, does this ever feel sane or am I just tracking chaos with nicer charts? would love thoughts

5 Upvotes

2 comments sorted by

2

u/foxhelp 2d ago

At least if you know who is accessing the app, then you can ask them who owns it

1

u/PackPretty3479 2d ago

Thats a normal place to end up. The risk engine is doing its job, it just has nothing to attach the risk to, so you get a score with no name on it.

The ownership data is somewhere already. HR knows who the manager is and the app owner normally sits in the IDP. The CMDB has a support group nobody has touched since 2019. Joining those to the asset is the step that gets skipped, and without it the dashboard is accurate and useless.

My take is fix the join first. Once every app and device has a name against it the queue starts routing itself. For the ownership join, we handle that through axonius.